CVE-2017-0423: Medium severity Google Android vulnerability
An elevation of privilege vulnerability in Bluetooth could enable a proximate attacker to manage access to documents on the device. This issue is rated as Moderate because it first requires exploitation of a separate vulnerability in the Bluetooth stack. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-32612586.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0423?
CVE-2017-0423 is rated as Moderate due to the requirement of exploiting a separate vulnerability in the Bluetooth stack.
How do I fix CVE-2017-0423?
To address CVE-2017-0423, update your Android device to the latest version that includes security patches for this vulnerability.
Which Android versions are affected by CVE-2017-0423?
CVE-2017-0423 affects Android versions 5.0, 5.1, and 6.0, including specific build versions.
Can CVE-2017-0423 be exploited remotely?
No, CVE-2017-0423 requires a proximate attacker to exploit the vulnerability.
What type of vulnerability is CVE-2017-0423?
CVE-2017-0423 is an elevation of privilege vulnerability in the Bluetooth functionality of Android devices.